chore(deps)(deps): bump actions-rust-lang/setup-rust-toolchain from 1… #87
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: verify-hyperd-pin | |
| # HEAD every platform URL for the pinned Hyper release. The archives are the | |
| # PyPI `tableauhyperapi` wheels, so this catches a wheel being yanked and | |
| # catches typos in hyperd-version.toml (version or wheel tag — a wrong tag is | |
| # just a URL that 404s) on PRs that touch the pin. | |
| on: | |
| push: | |
| branches: [main] | |
| paths: | |
| - "hyperdb-bootstrap/hyperd-version.toml" | |
| - "hyperdb-bootstrap/src/**" | |
| - ".github/workflows/verify-hyperd-pin.yml" | |
| - ".github/workflows/npm-build-publish.yml" | |
| - ".github/scripts/verify-npm-hyperd-pin.py" | |
| pull_request: | |
| paths: | |
| - "hyperdb-bootstrap/hyperd-version.toml" | |
| - "hyperdb-bootstrap/src/**" | |
| - ".github/workflows/verify-hyperd-pin.yml" | |
| - ".github/workflows/npm-build-publish.yml" | |
| - ".github/scripts/verify-npm-hyperd-pin.py" | |
| schedule: | |
| # Weekly sanity check — independent of PR traffic. | |
| - cron: "0 12 * * 1" | |
| workflow_dispatch: {} | |
| permissions: | |
| contents: read | |
| jobs: | |
| verify: | |
| runs-on: ubuntu-latest | |
| timeout-minutes: 10 | |
| steps: | |
| - uses: actions/checkout@v7 | |
| - name: Install build + guard dependencies (mold, python3-yaml) | |
| run: sudo apt-get update -q && sudo apt-get install -y mold python3-yaml | |
| - uses: actions-rust-lang/setup-rust-toolchain@v2 | |
| with: | |
| toolchain: stable | |
| cache-key: verify-hyperd-pin | |
| rustflags: "" | |
| - name: Verify pinned release URLs are reachable | |
| run: cargo run --release -p hyperdb-bootstrap --bin hyperdb-bootstrap -- verify | |
| - name: Verify npm-build-publish.yml hyperd pin matches the toml | |
| # The release workflow bundles hyperd into the npm packages from its | |
| # OWN hardcoded version + per-platform wheel tags/sha256s, decoupled | |
| # from the toml. | |
| # 0.7.1 shipped npm with the stale 0.0.25080 engine because only the | |
| # toml was bumped. This guard fails the build if they ever drift again. | |
| run: python3 .github/scripts/verify-npm-hyperd-pin.py |